
Mobile-Security-Framework-MobSF
Automated mobile application security testing framework for Android, iOS, and Windows. Performs static and dynamic analysis, malware detection, and…

Automated mobile application security testing framework for Android, iOS, and Windows. Performs static and dynamic analysis, malware detection, and…

Comprehensive OWASP guide for mobile app security testing, reverse engineering, and verifying MASVS/MASWE weaknesses through static, dynamic, and…

The Mobile App Pentest cheat sheet was created to provide concise collection of high value information on specific mobile application penetration…

🤖 A CLI application that automatically prepares Android APK files for HTTPS inspection

Damn Vulnerable iOS App (DVIA) is an iOS application that is damn vulnerable. Its main goal is to provide a platform to mobile security…

A vulnerable Android application that shows simple examples of vulnerabilities in a ctf style.

Intentionally vulnerable Android banking app for practicing mobile security testing, featuring root detection, anti-debugging, SSL pinning, and…

Fermion, an electron wrapper for Frida & Monaco.

A curated list of awesome iOS application security resources.

Python script to inject existing Android applications with a Meterpreter payload.

OWASP iGoat (Swift) - A Damn Vulnerable Swift Application for iOS

(deprecated) Android application vulnerability analysis and Android pentest tool

*This project is no longer maintained* OWASP GoatDroid is a fully functional and self-contained training environment for educating developers and…

Django application that performs SAST and Malware Analysis for Android APKs

Static and dynamic Android application security analysis

Android deeplink, Intent, and WebView bridge assessment helper for ethical hacking

ADT is a toolset designed to help model application behavior, research and test security vulnerabilities, and facilitate reversing hostile code.

Proof-of-concept exploit for CVE-2014-8609, demonstrating Android pending intent vulnerability exploitation for security research and mobile…